Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2002-0699 | First vendor Publication | 2002-10-04 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:N/I:P/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote attackers to delete digital certificates on a user's system via HTML. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0699 |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:190 | |||
Oval ID: | oval:org.mitre.oval:def:190 | ||
Title: | ActiveX Certificate Enrollment Unauthorized Remote Certificate Deletion | ||
Description: | Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote attackers to delete digital certificates on a user's system via HTML. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2002-0699 | Version: | 7 |
Platform(s): | Microsoft Windows 2000 | Product(s): | Certificate Enrollment Control |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Os | 1 | |
Os | 1 | |
Os | 1 | |
Os | 1 | |
Os | 1 | |
Os | 1 |
OpenVAS Exploits
Date | Description |
---|---|
2005-11-03 | Name : Flaw in Certificate Enrollment Control (Q323172) File : nvt/smb_nt_ms02-048.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
864 | Microsoft Windows Certificate Enrollment ActiveX Arbitrary Certificate Deletion |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Windows Certificate Enrollment ActiveX object access RuleID : 4184 - Revision : 12 - Type : BROWSER-PLUGINS |
2014-01-10 | Microsoft Windows Smartcard Enrollment ActiveX object access RuleID : 4181 - Revision : 12 - Type : BROWSER-PLUGINS |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2002-10-24 | Name : It is possible to delete digital certificates on the remote host. File : smb_nt_ms02-048.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Source | Url |
---|
Alert History
Date | Informations |
---|---|
2024-11-28 23:23:46 |
|
2024-11-28 12:05:05 |
|
2021-05-04 12:01:42 |
|
2021-04-22 01:01:50 |
|
2020-05-23 00:15:00 |
|
2018-10-13 00:22:25 |
|
2017-10-11 09:23:15 |
|
2016-04-26 12:11:38 |
|
2014-02-17 10:24:48 |
|
2014-01-19 21:21:43 |
|
2013-05-11 12:10:18 |
|